Profiles & Working on a Mac

Accessible risk management on Mac

You can do this with RiskOS, a risk register for macOS. Colour is never the only signal, movement is optional, and a full pass through the register can be made from the keyboard.

A register is read far more often than it is written. Once the risks are in, most of the work is scanning a table, checking a score, reading a badge and moving on — every one of those a reading task before it is anything else. RiskOS treats that as a constraint on the design rather than an option buried in a preferences pane: state is carried by words and symbols as well as colour, movement follows the setting you have already made for your Mac, and the parts of the register you touch most often answer to keys.

Note

There is no accessibility mode to switch on. RiskOS follows the settings you have already made for your Mac, and the register itself is built so that colour is never the only thing carrying meaning.

Where accessibility lives in the register

It is not in one place, because it is not one feature. The sidebar chooses a section — Profiles and Dashboard at the top, then the register itself, signals, inventory, reference and output. A list fills the middle of the window, and the panel on the right shows and edits whatever is selected. Both the sidebar and the panel resize by dragging their dividers, and RiskOS remembers where you leave them, so the proportions you find comfortable are the ones you get tomorrow morning.

Look in Settings and you will find Methodology, Appetite and Privacy, and nothing shaped like an accessibility pane. That is deliberate. The behaviour described here lives in the register itself: in how a band badge is drawn, in what VoiceOver is given to say about a row, in what the matrix does when a rating changes.

Set the register up to suit how you read

  1. Turn on the assistive settings you rely on

    Set VoiceOver, Reduce Motion and your preferred contrast in your Mac's own accessibility settings before you open the register. RiskOS takes them from there, every time it opens, on every profile. Nothing needs switching on inside the app and nothing needs setting again after an update.

  2. Let a risk row read as one sentence

    Choose Risks in the sidebar and move through the table. With VoiceOver on, a row is announced as a single sentence rather than as ten separate cells, so the reference, the title, the owner, the scores and the status arrive together. That is the difference between hearing a risk and hearing a table.

  3. Cut the table down to the columns you read

    Right-click the table header to show, hide and reorder columns. Every column you hide is one less thing to page past or listen through, and the arrangement is remembered, so a table trimmed to Ref, Risk, Owner, Residual and Review stays that way. Bring the others back the same way when a review needs them.

  4. Size the sidebar and the panel

    Drag the divider between the list and the panel until the text you read most is comfortable at the size you use, and do the same with the sidebar. A wider panel suits long descriptions and treatment plans; a wider list suits a scan down the residual column. Both settings persist between sessions.

  5. Save the view you return to

    Set the filters you actually work from — a band, over-appetite only, closed risks hidden — then use Save Current Filter… and name the combination. Bringing it back is one choice rather than a combination rebuilt from scratch, and the filter icon fills whenever a filter is active, so you are never reading a partial register believing it is the whole one.

  6. Read a rating from the stepper labels

    Open a risk and go to Assessment. Likelihood and impact are set on segmented steppers of five, each showing its scale label beside it, so you are choosing Likely rather than an unlabelled fourth square. The score, the band and the matrix underneath answer immediately, and the band is named in words wherever it appears.

  7. Work a review pass from the keyboard

    Choose Review, pick a scope, and the risks that need attention arrive one at a time, worst first, with the owner, controls, actions and last review on the same screen as the scoring inputs. confirms, saves and moves on, skips and goes back. The pointer is optional from the first risk to the last.

  8. Export a report that says what it shows

    Choose Reports, tick the sections you need, and export. E writes an HTML file that opens in any browser, contains no scripts and loads nothing from the internet; P writes a paginated PDF that repeats its table headers on every page and never splits a row across a page break. Both name each band in words rather than leaving a colour to do the work.

Colour is never the only signal

Colour is a fast signal and a fragile one. It fails for anyone who cannot separate two particular hues, it fails on a projector in a bright room, and it fails the moment a report is photocopied. So every state in RiskOS that has a colour also has a word, and usually a symbol as well. Nothing in the register is knowable only by hue.

States shown in colour, and what else carries each one
StateWhere you meet itWhat carries it besides colour
Severity bandRisk rows, the panel header, the matrix, reportsA symbol and the band's name — Low, Medium, High, Critical
Above appetiteEverywhere the risk appearsAn over-appetite flag on the risk itself, not a shade of the row
Control effectivenessThe Controls table and the control's detailA meter with its descriptor written out beside it
Control statusThe Controls table and any linked riskThe status in words: planned, implemented, operating or retired
Indicator statusThe Indicators table and the reading chartNamed states, with no data kept distinct from in tolerance
Framework coverageFrameworks, per requirementThree named states: covered, mapped but not operating, not mapped
Action urgencyThe Actions listGroup headings — Overdue, Due Soon, Later — and a badge on overdue rows

If you raise the contrast

Turning contrast up across your Mac sharpens the edges and flattens the soft tints a state might otherwise be hiding in. Nothing in the register depends on one of those tints surviving. A band is legible because the badge says High, a breached indicator is legible because it says so, and a risk over appetite is flagged rather than tinted. Raising contrast changes how the register looks; it does not change how much of it you can read.

Why this matters beyond your own screen

A register rarely stays with the person who wrote it. It goes into a board pack, an assurance pack, an auditor's evidence folder, and every one of those copies loses something. Because state is written out rather than implied, a risk report means the same thing printed in black and white as it does on the machine it came from.

What Reduce Motion changes

RiskOS uses movement in one particular way: when you change a rating, the markers on the risk matrix glide from the old cell to the new one, so you can see what moved and how far. It is a useful signal when it works for you and an unpleasant one when it does not.

With Reduce Motion on for your Mac, the movement goes and the highlight stays. The marker appears in its new cell rather than travelling there, and the emphasis that tells you which cell changed is still drawn. You lose the animation, not the information.

The highlight is the part that matters

Three markers may be in play on the same grid — inherent, residual and target, with a legend naming each — and what you need to know is which of them moved. The highlight carries that, not the journey, so a register worked with Reduce Motion on gives up nothing you would have used.

Reading a register with VoiceOver

The register is a table with as many as ten columns, and a table read cell by cell is exhausting long before it is useful. A risk row is announced as one sentence instead, so a single pass down the list tells you which risks are there, who owns them and where they stand, without stepping sideways through every column to assemble the picture.

Shape the sentence with the columns

Because the sentence is built from the columns on show, the column arrangement is also a listening decision. Hide Target, Trend and Inherent for a pass that is only about what is overdue, and the announcement shortens accordingly. Put the columns back for a re-scoring session. The arrangement is remembered per your own layout, so the two passes can genuinely be different.

Search before you scroll

Every list section is searchable, and search over risks covers the title, the reference, the category, the owner, the detail and the tags. Typing three words of a risk title is nearly always faster than travelling to it, particularly once the register has grown past a screen's worth of rows.

Working without a pointer

Thirteen keystrokes cover most of a working week. They are ordinary Mac keystrokes pointed at the parts of a register you touch most, and none of them need remembering as a combination of anything unusual.

Keyboard shortcuts and the job each one does
KeysWhat it doesWhere
⌘NCreates the right kind of item for the section you are inAny list section
⌘Z / ⇧⌘ZUndo and redoAnywhere
⌘,Opens SettingsAnywhere
⌃⌘PCycles through your profilesAnywhere
⇧⌘↩Confirms the risk in front of youReview
Saves and moves to the next riskReview
⌘→ / ⌘←Skips forward, or goes back one riskReview
⇧⌘EExports the report as HTMLReports
⇧⌘PExports the report as PDFReports
⌘PPrints the reportReports
⇧⌘BBacks up everything to a single fileAnywhere

Undo is an accessibility feature

Changes save as you type, which is a relief until the moment you change the wrong field. Z takes it back and Z puts it forward again, so an editable register is not a nervous one. Risks are closed rather than deleted, and every assessment is kept in the risk's History with the reason behind it, so the serious mistakes are the recoverable kind.

Troubleshooting

VoiceOver reads columns I never look at

Hide them. Right-click the table header and switch off the columns that are not part of this pass, then reorder what is left so the most useful field comes early. The arrangement is remembered, and nothing is lost — hidden columns are still there, still searchable, and still in the report.

The matrix markers still move when I change a rating

Reduce Motion is a setting for the whole Mac rather than one you set inside the app, so check it there. Once it is on, markers appear in their new cell instead of travelling to it, while the highlight that shows what changed is kept.

I cannot tell High from Critical on screen

Read the word rather than the colour: every band badge names itself. If you need the numbers, High covers scores of 10 to 16 and Critical 17 to 25, and keeping the Residual column on show puts the score next to the badge. Exported reports carry the same words.

The panel is too narrow to read comfortably

Drag the divider between the list and the panel to give the panel more room; drag the sidebar's edge to take some back from the navigation. RiskOS remembers both, so this is a one-time adjustment rather than something you redo each session.

I lost my place part-way through a review

The session survives leaving for another section, so go back to Review and carry on where you stopped. steps back to the risk before. A skipped risk is left completely untouched, which means it is still waiting in the next pass rather than quietly counted as done.

Habits that keep the register readable

  • Trim the table to the pass you are making. A review pass and a reporting pass want different columns, and the header menu takes seconds.
  • Name your filters. A saved filter is a view you do not have to rebuild, and rebuilding is where fiddly pointer work tends to collect.
  • Write titles that carry themselves. Backup restoration has never been tested end to end reads correctly as a sentence; Backups tells a listener nothing.
  • Say the band, not the colour. In a meeting, "RSK-0007 is High against an appetite of nine" travels further than "the red one".
  • Learn the four review keys first. They are the ones that turn the longest recurring job in a register into something you can do straight through.
  • Export the HTML version to share. One file, no scripts, nothing fetched from the internet, and it opens in any browser.

Frequently asked questions

Does RiskOS work with VoiceOver?

Yes. The register is built so that a risk row is announced as one sentence rather than as a sequence of separate cells, so a pass down the list tells you which risks are there, who owns them and where they stand. The columns you choose to show shape what the sentence contains.

Where are the accessibility settings in RiskOS?

There are none to set. VoiceOver, Reduce Motion and contrast are settings you make once for your Mac, and RiskOS follows them whenever it opens. Settings inside the app covers methodology, appetite and privacy. The accessible behaviour is in the register itself rather than in a pane you have to find.

Is colour the only way risk levels are shown?

No. Every severity band pairs its colour with a symbol and the written word, so a badge reads as High or Critical rather than as a shade. The same applies to control status, indicator status, framework coverage and overdue actions, each of which is named in words wherever it appears.

How do I stop the risk matrix animating on Mac?

Switch on Reduce Motion for your Mac. RiskOS then places matrix markers directly in their new cell instead of gliding them across the grid, while keeping the highlight that tells you which marker moved. You lose the animation and none of the meaning, and there is nothing to change inside the app.

Can I use a risk register without a mouse on Mac?

Largely, yes. ⌘N creates the right item for the section you are in, ⌘Z and ⇧⌘Z undo and redo, ⌃⌘P cycles profiles, and a whole review pass runs on four keys: ⇧⌘↩ to confirm, ↩ to save and move on, ⌘→ to skip and ⌘← to go back. Exports and backups have keys too.

How do I make a risk table easier to read on Mac?

Right-click the table header to hide the columns this pass does not need and reorder the rest, then drag the dividers so the list and the panel are the widths you want. RiskOS remembers both. Saving the filter combination you use most means the view comes back without being rebuilt.

Does a risk report stay readable in black and white?

Yes, because the bands are written out rather than only coloured. A printed or photocopied report still names each risk's band, its owner, its scores and its status. The PDF repeats table headers on every page and never splits a row across a page break, so nothing is stranded halfway through.

Can I share a risk report with someone who uses a screen reader?

Export the HTML version with ⇧⌘E. It is a single self-contained file that opens in any browser, runs no scripts and loads nothing from the internet, so it behaves like an ordinary document. Every band, status and coverage state in it is named in words as well as coloured.